CVE-2005-0403
published 2005-09-01CVE-2005-0403: init_dev in tty_io.c in the Red Hat backport of NPTL to Red Hat Enterprise Linux 3 does not properly clear controlling tty's in multi-threaded applications…
PriorityP418high7.2CVSS 2.0
AVLACLAuNCCICAC
EPSS
0.40%
32.5th percentile
init_dev in tty_io.c in the Red Hat backport of NPTL to Red Hat Enterprise Linux 3 does not properly clear controlling tty's in multi-threaded applications, which allows local users to cause a denial of service (crash) and possibly gain tty access via unknown attack vectors that trigger an access of a pointer to a freed structure.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | glibc | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux_desktop | — | — |
CVSS provenance
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
vendor_debian7.2LOW
vendor_redhat7.2HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-h877-2mwm-jwf4: init_dev in tty_io
ghsa_unreviewed·2022-05-01
CVE-2005-0403 [HIGH] GHSA-h877-2mwm-jwf4: init_dev in tty_io
init_dev in tty_io.c in the Red Hat backport of NPTL to Red Hat Enterprise Linux 3 does not properly clear controlling tty's in multi-threaded applications, which allows local users to cause a denial of service (crash) and possibly gain tty access via unknown attack vectors that trigger an access of a pointer to a freed structure.
Red Hat
security flaw
vendor_redhat·2005-03-08·CVSS 7.2
CVE-2005-0403 [HIGH] security flaw
security flaw
init_dev in tty_io.c in the Red Hat backport of NPTL to Red Hat Enterprise Linux 3 does not properly clear controlling tty's in multi-threaded applications, which allows local users to cause a denial of service (crash) and possibly gain tty access via unknown attack vectors that trigger an access of a pointer to a freed structure.
Debian
CVE-2005-0403: glibc - init_dev in tty_io.c in the Red Hat backport of NPTL to Red Hat Enterprise Linux...
vendor_debian·2005·CVSS 7.2
CVE-2005-0403 [HIGH] CVE-2005-0403: glibc - init_dev in tty_io.c in the Red Hat backport of NPTL to Red Hat Enterprise Linux...
init_dev in tty_io.c in the Red Hat backport of NPTL to Red Hat Enterprise Linux 3 does not properly clear controlling tty's in multi-threaded applications, which allows local users to cause a denial of service (crash) and possibly gain tty access via unknown attack vectors that trigger an access of a pointer to a freed structure.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
No detection rules found.
No public exploits indexed.
http://www.redhat.com/support/errata/RHSA-2005-293.htmlhttps://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=144059https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9435http://www.redhat.com/support/errata/RHSA-2005-293.htmlhttps://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=144059https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9435
2005-09-01
Published